This issue was addressed with improved state management. This issue is fixed in macOS Ventura 13.3, Safari 16.4, iOS 16.4 and iPadOS 16.4, tvOS 16.4, watchOS 9.4. Processing maliciously crafted web content may bypass Same Origin Policy.
History

Wed, 29 Jan 2025 21:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-346
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 09 Oct 2024 14:45:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:o:apple:safari:*:*:*:*:*:*:*:* cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2025-01-29T20:17:39.339Z

Reserved: 2023-03-08T00:00:00.000Z

Link: CVE-2023-27932

cve-icon Vulnrichment

Updated: 2024-08-02T12:23:30.578Z

cve-icon NVD

Status : Modified

Published: 2023-05-08T20:15:17.247

Modified: 2025-01-29T21:15:15.397

Link: CVE-2023-27932

cve-icon Redhat

Severity : Moderate

Publid Date: 2023-04-21T00:00:00Z

Links: CVE-2023-27932 - Bugzilla